nerdexam
Google

PROFESSIONAL-CLOUD-SECURITY-ENGINEER · Question #219

As part of your organization's zero trust strategy, you use Identity-Aware Proxy (IAP) to protect multiple applications. You need to ingest logs into a Security Information and Event Management…

The correct answer is A. Data Access audit logs. The data_access log name only appears if there was traffic to your resource after you enabled Cloud Audit Logs for IAP. Click to expand the date and time of the access you want to review. Authorized access has a blue i icon. Unauthorized access has an orange !! icon…

Submitted by femi9· Apr 18, 2026Managing operations within a cloud solution environment

Question

As part of your organization's zero trust strategy, you use Identity-Aware Proxy (IAP) to protect multiple applications. You need to ingest logs into a Security Information and Event Management (SIEM) system so that you are alerted to possible intrusions. Which logs should you analyze?

Options

  • AData Access audit logs
  • BPolicy Denied audit logs
  • CCloud Identity user log events
  • DAdmin Activity audit logs

How the community answered

(68 responses)
  • A
    71% (48)
  • B
    4% (3)
  • C
    18% (12)
  • D
    7% (5)

Explanation

The data_access log name only appears if there was traffic to your resource after you enabled Cloud Audit Logs for IAP. Click to expand the date and time of the access you want to review. Authorized access has a blue i icon. Unauthorized access has an orange !! icon. https://cloud.google.com/iap/docs/audit-log-howto

Topics

#Identity-Aware Proxy (IAP)#Audit Logs#SIEM#Intrusion Detection

Community Discussion

No community discussion yet for this question.

Full PROFESSIONAL-CLOUD-SECURITY-ENGINEER Practice